Model FVS328 ProSafe VPN Firewall with Dial Back-up Reference Manual
G-2
NETGEAR VPN Configuration FVS318 or FVM318 with FQDN to FVS328
December 2003, M-10041-01
Figure G-1:
Addressing and Subnet Used for Examples
Using DDNS and Fully Qualified Domain Names (FQDN)
Many ISPs (Internet Service Providers) provide connectivity to their customers using dynamic
instead of static IP addressing. This means that a user’s IP address does not remain constant over
time, which presents a challenge for gateways attempting to establish VPN connectivity.
A Dynamic DNS (DDNS) service allows a user whose public IP address is dynamically assigned
to be located by a host or domain name. It provides a central public database where information
(such as email addresses, host names and IP addresses) can be stored and retrieved. Now, a
gateway can be configured to use a 3
rd
party service in lieu of a permanent and unchanging IP
address to establish bi-directional VPN connectivity.
To use DDNS, you must register with a DDNS service provider. Example DDNS Service
Providers include:
Table G-1.
Example DDNS Service Providers
In this example, Gateway A is configured using an example FQDN provided by a DDNS Service
provider. In this case we established the hostname
netgear.dyndns.org
for Gateway A using the
DynDNS
www.dyndns.org
TZO.com
netgear.tzo.com
ngDDNS
ngddns.iego.net
Gateway A
22.23.24.25
FQDN
netgear.dydns.org
10.5.6.0/24
172.23.9.0/24
172.23.9.1
10.5.6.1
WAN IP
WAN IP
LAN IP
LAN IP
Gateway B
VPNC Example
Network Interface Addressing